CVE-2023-39209: Input Validation
Published Aug 8, 2023
·Updated
Improper input validation in Zoom Desktop Client for Windows before 5.15.5 may allow an authenticated user to enable an information disclosure via network access.
Affected Software
1 affected component
Zoom Zoom Windows<5.15.5
Event History
Aug 8, 2023
CVE Published
via MITRE·09:39 PM
Data Sourced
via MITRE·09:39 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this Zoom Desktop Client for Windows vulnerability?
The vulnerability ID for this Zoom Desktop Client for Windows vulnerability is CVE-2023-39209.
2
What is the severity of CVE-2023-39209?
The severity of CVE-2023-39209 is medium with a CVSS score of 6.5.
3
How does CVE-2023-39209 affect the Zoom Desktop Client for Windows?
CVE-2023-39209 allows an authenticated user to enable an information disclosure via network access in the Zoom Desktop Client for Windows before version 5.15.5.
4
How can an authenticated user exploit CVE-2023-39209?
An authenticated user can exploit CVE-2023-39209 by leveraging improper input validation to enable an information disclosure via network access.
5
How do I fix CVE-2023-39209 vulnerability?
To fix the CVE-2023-39209 vulnerability, update your Zoom Desktop Client for Windows to version 5.15.5 or later.